cve/2023/CVE-2023-7232.md

18 lines
761 B
Markdown
Raw Normal View History

2024-05-28 08:49:17 +00:00
### [CVE-2023-7232](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-7232)
![](https://img.shields.io/static/v1?label=Product&message=Backup%20and%20Restore%20WordPress%20&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-200%20Information%20Exposure&color=brighgreen)
### Description
The Backup and Restore WordPress WordPress plugin through 1.45 does not protect some log files containing sensitive information such as site configuration etc, allowing unauthenticated users to access such data
### POC
#### Reference
- https://wpscan.com/vulnerability/323fef8a-aa17-4698-9a02-c12d1d390763/
#### Github
No PoCs found on GitHub currently.